Ibm

Websphere Application Server Liberty

34 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 27.05.2026 13:00:04
  • Zuletzt bearbeitet 02.06.2026 17:16:38

IBM WebSphere Application Server - Liberty 22.0.0.11 through 26.0.0.5 IBM WebSphere Application Server Liberty could allow a remote attacker to bypass security under limited conditions by exploiting a specific timing window.

  • EPSS 0.28%
  • Veröffentlicht 22.04.2026 23:07:31
  • Zuletzt bearbeitet 13.05.2026 20:24:13

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.4 IBM WebSphere Application Server Liberty is vulnerable to identity spoofing under limited conditions when an application is deployed without authentication and authorization configu...

  • EPSS 0.36%
  • Veröffentlicht 25.03.2026 20:13:55
  • Zuletzt bearbeitet 30.03.2026 16:59:11

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty could provide weaker than expected security when administering security settings.

Medienbericht
  • EPSS 0.5%
  • Veröffentlicht 25.03.2026 20:12:27
  • Zuletzt bearbeitet 30.03.2026 16:59:31

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty is affected by privilege escalation. A privileged user could gain additional access to the application server.

Medienbericht
  • EPSS 0.28%
  • Veröffentlicht 25.03.2026 20:10:10
  • Zuletzt bearbeitet 30.03.2026 16:58:21

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty is vulnerable to server-side request forgery (SSRF). This may allow remote attacker to send unauthorized requests from the system, potential...

  • EPSS 0.17%
  • Veröffentlicht 03.03.2026 19:47:25
  • Zuletzt bearbeitet 04.03.2026 18:23:23

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.2 IBM WebSphere Application Server Liberty could provide weaker than expected security when using the Security Utility when administering security settings.

Medienbericht
  • EPSS 0.39%
  • Veröffentlicht 02.02.2026 16:16:17
  • Zuletzt bearbeitet 12.02.2026 21:16:54

IBM WebSphere Application Server Liberty 17.0.0.3 through 26.0.0.1 could allow a privileged user to upload a zip archive containing path traversal sequences resulting in an overwrite of files leading to arbitrary code execution.

  • EPSS 0.16%
  • Veröffentlicht 08.12.2025 21:58:13
  • Zuletzt bearbeitet 07.10.2026 20:10:01

IBM WebSphere Application Server 8.5, 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.12 are affected by cross-site scripting due to improper validation of user-supplied input. An attacker could exploit this vulnerability by ...

  • EPSS 0.45%
  • Veröffentlicht 14.08.2025 15:38:11
  • Zuletzt bearbeitet 03.11.2025 20:18:30

IBM WebSphere Application Server Liberty 18.0.0.2 through 25.0.0.8 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory resources...

  • EPSS 0.18%
  • Veröffentlicht 12.08.2025 19:39:17
  • Zuletzt bearbeitet 14.08.2025 01:29:01

IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.8 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p...